[Mimedefang] updated Logwatch for blacklist/greylist messages

Gary Funck gary at intrepid.com
Sun Apr 24 13:52:12 EDT 2005



In our configuration, where we implement blacklists using DNSBL's
and greylists in MdF, we see tons of messages as follows:

blacklists:

    tomrwv at example.com (553 5.0.0 CBL Proxy/Trojan): 1 Time(s)
    bmj71880 at example.com (553 5.0.0 CBL Proxy/Trojan): 1 Time(s)
    seeker66 at example.com (553 5.0.0 CBL Proxy/Trojan): 1 Time(s)
    robertl at example.com (553 5.0.0 SBL http://www.spamhaus.org/SBL/sbl.lasso?query=SBL17483): 1 Time(s)

greylists:

   Milter: to=<skippy at example.com>, reject=451 4.3.0 greylisted for 1 minutes and 0 seconds.: 1 Time(s)
   Milter: to=<smitthgw at example.com>, reject=451 4.3.0 greylisted for 58 seconds.: 1 Time(s)
   Milter: to=<bartholomew at example.com>, reject=451 4.3.0 greylisted for 1 minutes and 0 seconds.: 1 Time(s)

Has anyone taken the time to implement a new, improved Logwatch filter
that would consolidate message entries like those above?  Actually,
I'd be interested in any logwatch improvements you've made.

thanks - Gary




More information about the MIMEDefang mailing list